Vulnerability Database

311,378

Total vulnerabilities in the database

CVE-2025-54821

An Improper Privilege Management vulnerability [CWE-269] in Fortinet FortiOS 7.6.0 through 7.6.3, FortiOS 7.4 all versions, FortiOS 7.2 all versions, FortiOS 7.0 all versions, FortiOS 6.4 all versions, FortiPAM 1.6.0, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiProxy 7.6.0 through 7.6.3, FortiProxy 7.4 all versions, FortiProxy 7.2 all versions, FortiProxy 7.0 all versions may allow an authenticated administrator to bypass the trusted host policy via crafted CLI command.

  • Published: Nov 18, 2025
  • Updated: Nov 19, 2025
  • CVE: CVE-2025-54821
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 1.9
  • AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:N

CWEs: